<3
http://www.google.com/webmasters/hacked/
Oslo - monit o zepsutych httpsach też jest kupą rzuconą w hakerów.
No mógłbym wziąć boilerplate rysia, tylko gdzie to wysłać? A może póki
jeszcze siedzą w Krakowie, wybrać się z maczetą do Googla?
Brakuje mi takiego generala tylko dla syćkich haesów. Żeby jakieś duże
rzeczy przepychać. I nie, hackerspaces.org nie wygląda mi na zbyt żywe.
Tamten jabber jest prawie martwy a lista jeszcze martwiejsza.
--
Pozdrawiam. Wiktor Przybylski
Podrzucam. Discuss.
---------- Treść przekazywanej wiadomości ----------
Temat: Re: [Cryptography] trojans in the firmware
Data: środa, 25 lutego 2015, 07:07:19
DW: cypherpunks(a)cpunks.org
On Tue, Feb 24, 2015 at 8:53 PM, Jerry Leichter <leichter(a)lrw.com> wrote:
> On Feb 24, 2015, at 2:24 AM, Ryan Carboni <ryacko(a)gmail.com> wrote:
>> Fighting against a nation state using equipment you cannot design
>> yourself or anyone you know could design... don't.
> But in fact you can't design or manufacture *everything*. Do you
> need control of your chips all the way back to mining the sand?
Aren't there really only a couple ways to solve this?
A) Somewhat similar to the IAEA, everyone pick their own trusted
and knowledgeable people, then assemble everyone's people together
with orders:
1) Respect whatever soverign secrets you see
[profits, design advantages, etc]
2) Just tell us what we want to know
[do the chips that come out of the fab equal the designs that went
into it, and are those designs free of trust issues]
This is complicated by needing to insert yourself into those legacy
areas, as well as verify essentially that of B below.
B) Contact your favorite billionaires and pitch the case for a truly
open fab. And yes, that could include starting from ...
> Do you need control of your chips all the way back to mining the
> sand? [...] build a computer out of [...] simple logic gates
> JK-flipflops
Since that tech is already discovered, it would just be an open
rapid physical rebuild of history from transistor to today. Maybe
that would take 10 years of dedicated work to create a trusted fab
that matches todays tech and can replicate itself.
And if you think about it, it could be a profitable venture because
if you did it right, you'd be able to openly and certifiably create
trusted Orange Book / CC style hardware... something governments,
large entities and even users have always wanted but haven't been
able to obtain in affordable quantites and purposes.
This may be easier because there's no legacy to remediate.
And there's no reason you couldn't manufacture private chips too,
the only restriction being that terms that would compromise the fab
are not allowed.
https://en.wikipedia.org/wiki/International_Atomic_Energy_Agencyhttps://en.wikipedia.org/wiki/Trusted_Computer_System_Evaluation_Criteriahttps://en.wikipedia.org/wiki/Trusted_computing_basehttp://cm.bell-labs.com/who/ken/trust.htmlhttps://en.wikipedia.org/wiki/Backdoor_(computing)https://en.wikipedia.org/wiki/Open-source_hardware
-----------------------------------------
--
Pozdrawiam,
Michał "rysiek" Woźniak
Zmieniam klucz GPG :: http://rys.io/pl/147
GPG Key Transition :: http://rys.io/en/147
FYI
---------- Treść przekazywanej wiadomości ----------
Temat: [FWiOO] News: Calligra / Kexi 2.9 i wsparcie polskiej firmy
Data: wtorek, 3 marca 2015, 13:45:53
Od: Jaroslaw Staniek
Witam,
News: Polski akcent wydania Calligra 2.9. Projekt Kexi zyskał partnera
w postaci polskiej firmy Milo.
To wsparcie pomaga w rozwoju otwartego oprogramowania.
Więcej o tym na końcu artykułu:
https://dot.kde.org/2015/02/26/calligra-29-brings-biggest-krita-release-and…
--
regards, Jaroslaw Staniek
KDE:
: A world-wide network of software engineers, artists, writers, translators
: and facilitators committed to Free Software development - http://kde.org
Calligra Suite:
: A graphic art and office suite - http://calligra.org
Kexi:
: A visual database apps builder - http://calligra.org/kexi
Qt Certified Specialist:
: http://www.linkedin.com/in/jstaniek
-----------------------------------------
--
Pozdrawiam,
Michał "rysiek" Woźniak
Zmieniam klucz GPG :: http://rys.io/pl/147
GPG Key Transition :: http://rys.io/en/147